What is CVE-2026-75918?
CVE-2026-75918 is a vulnerability in phpMyFAQ versions before 4.1.7 where password reset tokens are stored in a publicly accessible tracking file when user tracking is enabled. Unauthenticated attackers can read the tracking file to extract these tokens and replay them against the password reset API to take over user accounts.
Azərbaycanca: CVE-2026-75918, phpMyFAQ platformunun 4.1.7 öncəsi versiyalarında aşkarlanan boşluqdur. İstifadəçi izləmə aktiv olduqda, parol sıfırlama tokenləri ictimaiyyətə açıq tracking faylında saxlanılır. Təsdiqlənməmiş hücumçular bu faylı oxuyaraq tokeni ələ keçirib istifadəçi hesablarını ələ keçirə bilərlər.
Related CVEs
link basis: same weakness class CWE-200
FAQ2
Does exploiting CVE-2026-75918 require the attacker to be authenticated?
No, unauthenticated attackers can read the publicly accessible tracking file.
Under what condition can CVE-2026-75918 be exploited?
The vulnerability can be exploited when user tracking is enabled.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.